CVE-2020-9257

HIGH

Huawei P30 Pro Firmware - Buffer Overflow

Title source: rule
STIX 2.1

Description

HUAWEI P30 Pro smartphones with versions earlier than 10.1.0.123(C432E19R2P5patch02), versions earlier than 10.1.0.126(C10E11R5P1), and versions earlier than 10.1.0.160(C00E160R2P8) have a buffer overflow vulnerability. The software access data past the end, or before the beginning, of the intended buffer when handling certain operations of certificate, the attacker should trick the user into installing a malicious application, successful exploit may cause code execution.

References (1)

Core 1

Scores

CVSS v3 8.8
EPSS 0.0029
EPSS Percentile 52.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-120
Status published
Products (1)
huawei/p30_pro_firmware < 10.1.0.123\(c432e19r2p5patch02\)
Published Jul 17, 2020
Tracked Since Feb 18, 2026